Configuring etcd RBAC
Setting up etcd certificates for RBAC
Reference overview of role-based access control for the etcdv3 datastore used by Calico Open Source covering users, roles, and permission scopes.
Generating certificates
Reference for generating Certificate Authority and client certificates that authenticate Calico Open Source components against the etcdv3 datastore.
Creating users and roles
Reference for defining etcdv3 users and roles that grant scoped access to Calico Open Source components.
Segmenting etcd on Kubernetes (basic)
Reference for restricting user access to Kubernetes and Calico Open Source resources using role-based access control.
Segmenting etcd on Kubernetes (advanced)
Advanced reference for restricting user access to Calico Open Source components and calicoctl through Kubernetes role-based access control.
Calico key and path prefixes
Reference listing the etcdv3 key prefixes used by each Calico Open Source component for role-based access control configuration.